External network access authentication system and authentication method based on hardware access card

An access authentication and access card technology, applied in the field of data communication, can solve problems such as authentication server intrusion, and achieve the effects of easy security authentication, simple and clear interface, and good applicability

Active Publication Date: 2018-11-16
北京网迅科技有限公司杭州分公司
View PDF10 Cites 2 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0003] The purpose of the present invention is to provide an external network access authentication system and authentication method based on a hardware access card, aiming at solving the risk problem of the authentication server being invaded by optimizing the design of the external network access authentication system, so as to improve the security of the network. security purpose

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • External network access authentication system and authentication method based on hardware access card
  • External network access authentication system and authentication method based on hardware access card
  • External network access authentication system and authentication method based on hardware access card

Examples

Experimental program
Comparison scheme
Effect test

Embodiment

[0026] Embodiment: Ethernet is used as the external network, and the client 1 and the hardware access card 2 have their own external network IP addresses. The built-in network card 5 of the authentication server 3 is connected to the intranet. The information stored in the hardware access card 2 includes: the certificate of the authentication server 3 issued by the CA, the private key corresponding to the certificate of the authentication server 3, and the CA certificate that issued the client 1 certificate; the information stored in the client 1 includes: the client certificate issued by the CA. The client 1 certificate, the private key corresponding to the client 1 certificate, and the CA certificate that issued the server 3 certificate. The hardware access card 2 and the client 1 perform two-way authentication on the connection information (including communication key, IP address, etc.). Submit it to CPU4, and client 1 implements intranet access.

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention relates to an external network access authentication system and an authentication method based on a hardware access card. The external network access authentication system based on the hardware access card comprises the following steps: an authentication server in connection with the internal network adopts a hardware access card as a peripheral device to connect the external network; the hardware access card is externally connected with a client through the external network, and the hardware access card is internally connected with the CPU through a peripheral bus; the CPU is connected with the internal network through a network card; the client and the hardware access card must pass bidirectional authentication; and the hardware access card is used as a safety boundary forthe connection of the external network and the internal network. The external network access authentication system and the authentication method based on the hardware access card in the invention adopt the hardware access card as the peripheral device to connect the external network; the hardware access card is used as the safety boundary for the connection between the external network and the internal network; the interface is simple and clear so that the server is more strictly separated from the network where the client is located, thereby avoiding the risk of the authentication server being invaded; and the external network access authentication system and the authentication method based on the hardware access card can work in cooperation with other existing servers and have good applicability.

Description

technical field [0001] The invention relates to an external network and an internal network interconnection technology, in particular to an external network access authentication system and authentication method based on a hardware access card, belonging to the technical field of data communication. Background technique [0002] Under the background of the rapid development of network communication technology, network information and various applications are becoming more and more popular. This article is referred to as intranet for short; extranet: Internet, this article is referred to as extranet for short, such as the Internet). The internal network is relatively safe, and will neither be attacked by hackers from the external network nor leak secrets. However, because the external network is full of many unsafe factors, such as: malicious attacks by hackers, virus infection, etc., it always threatens the security of the internal network. Users need to access the intrane...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): H04L29/06
CPCH04L63/02H04L63/0853H04L63/0869
Inventor 张宇弘
Owner 北京网迅科技有限公司杭州分公司
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products